The Web Configuration Utility in Meinberg LANTIME devices with firmware before 6.24.004 allows remote authenticated users with certain privileges to read arbitrary files via (1) the ntpclientcounterlogfile parameter to cgi-bin/mainv2 or (2) vectors involving curl support of the "file" schema in the firmware update functionality.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/145388/Meinberg-LANTIME-Web-Configuration-Utility-6.16.008-Arbitrary-File-Read.html | Issue Tracking Third Party Advisory VDB Entry |
http://seclists.org/fulldisclosure/2017/Dec/50 | Issue Tracking Mailing List Third Party Advisory |
http://packetstormsecurity.com/files/145388/Meinberg-LANTIME-Web-Configuration-Utility-6.16.008-Arbitrary-File-Read.html | Issue Tracking Third Party Advisory VDB Entry |
http://seclists.org/fulldisclosure/2017/Dec/50 | Issue Tracking Mailing List Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 03:16
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.com/files/145388/Meinberg-LANTIME-Web-Configuration-Utility-6.16.008-Arbitrary-File-Read.html - Issue Tracking, Third Party Advisory, VDB Entry | |
References | () http://seclists.org/fulldisclosure/2017/Dec/50 - Issue Tracking, Mailing List, Third Party Advisory |
Information
Published : 2017-12-19 15:29
Updated : 2024-11-21 03:16
NVD link : CVE-2017-16786
Mitre link : CVE-2017-16786
CVE.ORG link : CVE-2017-16786
JSON object : View
Products Affected
meinbergglobal
- lantime_m300
- lantime_m900
- lantime_m3000
- lantime_m200
- lantime_m100
- lantime_m600
- lantime_firmware
- lantime_m1000
- lantime_m400
- lantime_m500
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor